StepSecurity

Skip to content

Navigation Menu

Sign in

Appearance settings

@step-security

Secure your GitHub Actions with StepSecurity: Your Trusted CI/CD Security Partner

  • Verified

    We've verified that the organization step-security controls the domains:

    • www.stepsecurity.io
    • stepsecurity.io

Step Security Logo

Close the CI/CD Security Gap

Pinned Loading

  1. Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, and process activity on those runners, detecting threats in re…

    TypeScript 983 85

  2. Orchestrate GitHub Actions Security

    Go 307 50

  3. Publish from GitHub Actions using multi-factor authentication

    TypeScript 296 20

  4. GitHub Actions Goat: Deliberately Vulnerable GitHub Actions CI/CD Environment

    JavaScript 495 303

Repositories

Type
Select type

Language
Select language

Sort
Select order

Showing 10 of 255 repositories

  • api-use-cases Public

    Practical examples for using the StepSecurity API to answer real supply chain security questions

    step-security/api-use-cases’s past year of commit activity

    Shell 0 Apache-2.0 0

    0 0

    Updated Mar 6, 2026

  • lock-threads Public

    GitHub Action that locks closed issues, pull requests and discussions after a period of inactivity. Secure drop-in replacement for dessant/lock-threads.

    step-security/lock-threads’s past year of commit activity

    JavaScript 0 MIT

    1 0 7

    Updated Mar 6, 2026

  • action-openfga-test Public

    Github Action for testing your OpenFGA Authorization Model. Secure drop-in replacement for openfga/action-openfga-test.

    step-security/action-openfga-test’s past year of commit activity

    0 Apache-2.0

    1 0 4

    Updated Mar 6, 2026

  • synthetics-ci-github-action Public

    Run Synthetic tests in your GitHub workflows with Datadog Continuous Testing. Secure drop-in replacement for DataDog/synthetics-ci-github-action.

    step-security/synthetics-ci-github-action’s past year of commit activity

    TypeScript 0 Apache-2.0

    1 1 14

    Updated Mar 6, 2026

  • action-surefire-report Public

    Reports surefire test results as GitHub Pull Request Check. Secure drop-in replacement for ScaCap/action-surefire-report.

    step-security/action-surefire-report’s past year of commit activity

    0 0

    0 1

    Updated Mar 6, 2026

  • step-security/reusable-workflows’s past year of commit activity

    Go 0 MIT

    3 1 6

    Updated Mar 6, 2026

  • action-rubocop Public

    Run rubocop with reviewdog 🐶. Secure drop-in replacement for reviewdog/action-rubocop.

    step-security/action-rubocop’s past year of commit activity

    0 0

    0 1

    Updated Mar 6, 2026

  • mongodb-github-action Public

    Use MongoDB in GitHub Actions. Secure drop-in replacement for supercharge/mongodb-github-action.

    step-security/mongodb-github-action’s past year of commit activity

    Shell 0 MIT

    1 1 11

    Updated Mar 6, 2026

  • step-security/github-actions-ansible-vault’s past year of commit activity

    0 0

    0 1

    Updated Mar 6, 2026

  • gitleaks-action Public

    Protect your secrets using Gitleaks-Action. Secure drop-in replacement for gitleaks/gitleaks-action.

    step-security/gitleaks-action’s past year of commit activity

    TypeScript 0 MIT

    1 1 8

    Updated Mar 6, 2026

Most used topics

Loading…